← Sectigo cases
Bugzilla #1793789
Certificate Misissuance
Sectigo: Incorrect JOI
RESOLVED
FIXED
Sectigo
AI Summary
Sectigo identified a mississuance of an EV TLS certificate due to an incorrect Jurisdiction of Incorporation (JOI) caused by a validation error. The issue arose when a validation agent mistakenly selected the wrong Registration QGIS source, leading to incorrect JOI values being assigned. The error was detected shortly after issuance, prompting immediate action to revoke the certificate and issue a replacement. Sectigo has since implemented additional automated checks to prevent similar occurrences in the future.
Chronology
- Certificate issued with incorrect JOI
- Mississuance detected and revocation initiated
- Remediation changes deployed
Participants
Martijn Katerbarg
External References
Similar Local Cases
Sectigo: Wrong usage of LEI records for the issuance of SMIME Certificates
Sectigo: Incorrect JOI Country value
Sectigo: Incorrect inclusion of DBA name
Sectigo: Misspelled city name in localityName field
Sectigo: SMIME issuance with insufficient validation of mailbox authorization or control
Sectigo: EV Certificate issuance with incorrect subject:serialNumber attribute value
Sectigo: Missing data in cabfOrganizationIdentifier
Sectigo: Incorrect EV businessCategory